<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>S32KのトピックRe: S32K3 SHE key update</title>
    <link>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1974277#M42091</link>
    <description>&lt;P&gt;Hi &lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/239119"&gt;@JiayuZhou&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. This extension of SHE spec is available on both CSEc on K1 and HSE on K3. It’s up to you if you will use it or not. Both options are possible:&lt;/P&gt;
&lt;P&gt;From AN5401 for S32K1:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_0-1728994930679.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/304800i1C4F7E6FB8F9972C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_0-1728994930679.png" alt="lukaszadrapa_0-1728994930679.png" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;lukaszadrapa_0-1728994930679.png&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;From HSE FW RM for S32K3:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_1-1728995010732.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/304801i3D726D557DAC6094/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_1-1728995010732.png" alt="lukaszadrapa_1-1728995010732.png" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;lukaszadrapa_1-1728995010732.png&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;2. Yes, you are right. I can see that this was already reported short time ago. This will be fixed in next RTD versions in the near future. &lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Lukas&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 15 Oct 2024 12:25:33 GMT</pubDate>
    <dc:creator>lukaszadrapa</dc:creator>
    <dc:date>2024-10-15T12:25:33Z</dc:date>
    <item>
      <title>S32K3 SHE key update</title>
      <link>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1972546#M41974</link>
      <description>&lt;P&gt;1. In K3 HSE_B Firmware RM document, FID is defined by 6 bit, so K3 not support to FID-5bit, right?[In K146 chip, FID not only support to 6 bit, but also 5 bit.]&lt;/P&gt;&lt;P&gt;So, in S32K3, if use FID-5bit to generate M1-M3, SHE key cannot be updated, right?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="JiayuZhou_0-1728703913045.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/304320i905B0E8005123C84/image-size/medium?v=v2&amp;amp;px=400" role="button" title="JiayuZhou_0-1728703913045.png" alt="JiayuZhou_0-1728703913045.png" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;JiayuZhou_0-1728703913045.png&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. In S32K3 MCAL's crypto driver, SHE key's M4 stored in key element 2(CRYPTO_KE_MAC_PROOF), and M5 stored in key element 6(CRYPTO_KE_CIPHER_PROOF). but,&amp;nbsp;As far as I know, M4M5 should store in key element 2, not element 6.&amp;nbsp;Does NXP's crypto code not comply with autosar standard?&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="JiayuZhou_1-1728704593426.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/304323i033F8D61CB0F27FF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="JiayuZhou_1-1728704593426.png" alt="JiayuZhou_1-1728704593426.png" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;JiayuZhou_1-1728704593426.png&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 12 Oct 2024 05:22:20 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1972546#M41974</guid>
      <dc:creator>JiayuZhou</dc:creator>
      <dc:date>2024-10-12T05:22:20Z</dc:date>
    </item>
    <item>
      <title>Re: S32K3 SHE key update</title>
      <link>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1974277#M42091</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.nxp.com/t5/user/viewprofilepage/user-id/239119"&gt;@JiayuZhou&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. This extension of SHE spec is available on both CSEc on K1 and HSE on K3. It’s up to you if you will use it or not. Both options are possible:&lt;/P&gt;
&lt;P&gt;From AN5401 for S32K1:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_0-1728994930679.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/304800i1C4F7E6FB8F9972C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_0-1728994930679.png" alt="lukaszadrapa_0-1728994930679.png" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;lukaszadrapa_0-1728994930679.png&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;From HSE FW RM for S32K3:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_1-1728995010732.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/304801i3D726D557DAC6094/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_1-1728995010732.png" alt="lukaszadrapa_1-1728995010732.png" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;lukaszadrapa_1-1728995010732.png&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;2. Yes, you are right. I can see that this was already reported short time ago. This will be fixed in next RTD versions in the near future. &lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Lukas&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Oct 2024 12:25:33 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1974277#M42091</guid>
      <dc:creator>lukaszadrapa</dc:creator>
      <dc:date>2024-10-15T12:25:33Z</dc:date>
    </item>
    <item>
      <title>Re: S32K3 SHE key update</title>
      <link>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1974288#M42094</link>
      <description>Hi,lukaszadrapa,&lt;BR /&gt;1.In your figure, S32K3 don't have SFE flag like S32K1, so it only support to FID 6 bit, can not meet to FID 5bit, because it must configure VERIFY_ONLY bit. Wether NXP provide HSE firmware to support to use FID 5bit?&lt;BR /&gt;2.when is the next RTD provide? Can you provide a way to modify the relevant code in the current RTD? We‘re using this RTD to develop SW currently and already need to use this function.</description>
      <pubDate>Tue, 15 Oct 2024 12:46:48 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1974288#M42094</guid>
      <dc:creator>JiayuZhou</dc:creator>
      <dc:date>2024-10-15T12:46:48Z</dc:date>
    </item>
    <item>
      <title>Re: S32K3 SHE key update</title>
      <link>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1974995#M42151</link>
      <description>&lt;P&gt;1. There's no difference. According to SHE specification, FID is used only for M2 calculation and it looks like this:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="lukaszadrapa_0-1729068195045.png" style="width: 400px;"&gt;&lt;img src="https://community.nxp.com/t5/image/serverpage/image-id/304967iB8044D24AEA21F0F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="lukaszadrapa_0-1729068195045.png" alt="lukaszadrapa_0-1729068195045.png" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;lukaszadrapa_0-1729068195045.png&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;So, M2 is the CBC-encrypted concatenation of the new counter value CID, the according flags FID, a pattern to fill the first block with ‘0’ bits and the new key KID.&lt;BR /&gt;VERIFY_ONLY extension flag is added to the end of FID - it replaces the first zero in that 95bits padding. &lt;BR /&gt;If you keep VERIFY_ONLY zero, it meets SHE specification. No other changes are necessary, no specific HSE firmware is needed. The behavior will correspond to SHE spec without this extension.&lt;/P&gt;
&lt;P&gt;2. As I wrote, this was reported short time ago, it's not resolved yet. &lt;BR /&gt;I expect that only the CRYPTO_KE_CIPHER_PROOF definition will be changed from 6 to 2 as required by the standard. &lt;BR /&gt;And because it's not resolved yet, I can't provide expected release date.&lt;/P&gt;
&lt;P&gt;Regards,&lt;BR /&gt;Lukas&lt;/P&gt;</description>
      <pubDate>Wed, 16 Oct 2024 08:44:04 GMT</pubDate>
      <guid>https://community.nxp.com/t5/S32K/S32K3-SHE-key-update/m-p/1974995#M42151</guid>
      <dc:creator>lukaszadrapa</dc:creator>
      <dc:date>2024-10-16T08:44:04Z</dc:date>
    </item>
  </channel>
</rss>

